Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mdaemon mdaemon vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2019-8984
MDaemon Webmail 14.x up to and including 18.x prior to 18.5.2 has XSS (issue 2 of 2).
Altn Mdaemon
NA
CVE-2008-2631
The WordClient interface in Alt-N Technologies MDaemon 9.6.5 allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted HTTP POST request. NOTE: the provenance of this information is unknown; the details are obtained ...
Altn Mdaemon
1 EDB exploit
NA
CVE-2008-1358
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to execute arbitrary code via a FETCH command with a long BODY.
Altn Mdaemon 9.6.4
2 EDB exploits
NA
CVE-2003-1471
MDaemon POP server 6.0.7 and previous versions allows remote authenticated users to cause a denial of service (crash) via a (1) DELE or (2) UIDL with a negative number.
Alt-n Mdaemon
NA
CVE-2012-2584
Multiple cross-site scripting (XSS) vulnerabilities in Alt-N MDaemon Free 12.5.4 allow remote malicious users to inject arbitrary web script or HTML via an e-mail message body with (1) the Cascading Style Sheets (CSS) expression property in conjunction with a CSS comment within t...
Altn Mdaemon 12.5.4
1 EDB exploit
NA
CVE-2006-5709
Unspecified vulnerability in WorldClient in Alt-N Technologies MDaemon prior to 9.50 has unknown impact and attack vectors related to a "JavaScript exploit."
Alt-n Mdaemon
NA
CVE-2007-3622
Unspecified vulnerability in DomainPOP in Alt-N Technologies MDaemon prior to 9.61 allows remote malicious users to cause a denial of service (crash) via malformed messages.
Alt-n Mdaemon
5.4
CVSSv3
CVE-2020-18723
Stored cross-site scripting (XSS) in file attachment field in MDaemon webmail 19.5.5 allows an malicious user to execute code on the email recipient side while forwarding an email to perform potentially malicious activities.
Altn Mdaemon Webmail
5.4
CVSSv3
CVE-2020-18724
Authenticated stored cross-site scripting (XSS) in the contact name field in the distribution list of MDaemon webmail 19.5.5 allows an malicious user to executes code and perform a XSS attack while opening a contact list.
Altn Mdaemon Webmail
8.8
CVSSv3
CVE-2018-17792
MDaemon Webmail (formerly WorldClient) has CSRF.
Altn Mdaemon Webmail 14.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »